Artwork

Content provided by the2030.cloud Podcast and The2030.cloud Podcast. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by the2030.cloud Podcast and The2030.cloud Podcast or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

XZ Exploit Discussion

17:17
 
Share
 

Manage episode 410978231 series 1558354
Content provided by the2030.cloud Podcast and The2030.cloud Podcast. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by the2030.cloud Podcast and The2030.cloud Podcast or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
This episode really highlights the danger of contributor burnout and overload. But it also shows that we're not very good as an industry at sustaining work. Today we dissect what the XZ SSH intrusion attack is, how it happened, what the social engineering was, and the pressure that involved to make that happen. Transcript: https://otter.ai/u/kRqADDwa6DmoZcnQEmqQD1UaxZ8?utm_source=copy_url References https://www.openwall.com/lists/oss-security/2024/03/29/4 https://news.ycombinator.com/item?id=39865810 https://arstechnica.com/security/2024/04/what-we-know-about-the-xz-utils-backdoor-that-almost-infected-the-world/
  continue reading

473 episodes

Artwork

XZ Exploit Discussion

cloud2030

29 subscribers

published

iconShare
 
Manage episode 410978231 series 1558354
Content provided by the2030.cloud Podcast and The2030.cloud Podcast. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by the2030.cloud Podcast and The2030.cloud Podcast or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
This episode really highlights the danger of contributor burnout and overload. But it also shows that we're not very good as an industry at sustaining work. Today we dissect what the XZ SSH intrusion attack is, how it happened, what the social engineering was, and the pressure that involved to make that happen. Transcript: https://otter.ai/u/kRqADDwa6DmoZcnQEmqQD1UaxZ8?utm_source=copy_url References https://www.openwall.com/lists/oss-security/2024/03/29/4 https://news.ycombinator.com/item?id=39865810 https://arstechnica.com/security/2024/04/what-we-know-about-the-xz-utils-backdoor-that-almost-infected-the-world/
  continue reading

473 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide